CrawlJobs Logo

Governance, Risk, and Compliance Engineer

clickhouse.com Logo

ClickHouse

Location Icon

Location:
United States

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

131000.00 - 205000.00 USD / Year

Job Description:

The Governance, Risk, and Compliance (GRC) team plays a critical role in enabling trust for our customers by designing, implementing, and maintaining compliance programs for a modern database-as-a-service platform used across a wide range of regulated industries. The team is responsible for deeply understanding applicable compliance frameworks, translating requirements into practical, scalable controls, and partnering across the company to embed compliance into our products, systems, and day-to-day operations. This is a highly hands-on role with broad ownership and real impact. You’ll have the opportunity to apply your expertise directly, influence technical and business decisions, and grow alongside a fast-moving organization as our compliance and security programs continue to evolve.

Job Responsibility:

  • Partner cross-functionally to design, implement, and maintain compliance programs, including SOC 2, ISO 27001 / 27701, PCI-DSS, HIPAA, GDPR, FedRAMP, and others as needed
  • Collaborate closely with Engineering to review and validate compliance-relevant product and infrastructure changes, including hands-on testing and documentation development
  • Execute ongoing compliance operations, including: Employee security onboarding and training
  • Third-party/vendor risk assessments
  • Customer security questionnaires and audits
  • Quarterly access reviews, ASV scans, and risk assessment refreshes
  • Support and enhance access governance programs in partnership with Operations, including Okta and ConductorOne onboarding, configuration, and reviews
  • Work with Marketing, Privacy and Legal to support privacy tooling, data protection initiatives, and regulatory requirements
  • Coordinate with the Security team to maintain and improve corporate security tooling, controls, and operational processes
  • Contribute to continuous improvement of GRC processes, automation, and tooling to scale with the business

Requirements:

  • 7+ years of experience in IT Audit, Governance, Risk & Compliance, and/or Information Security
  • Bachelor’s degree in Computer Science, Information Technology, Information Systems Management, or equivalent practical experience
  • One or more relevant certifications such as CISA, PCI-P, CIPP, or equivalent
  • Strong working knowledge of major security and privacy frameworks, with hands-on experience interpreting and implementing controls in a cloud-based environment
  • Demonstrated experience using and administering GRC and security tooling
  • Excellent written and verbal communication skills, with the ability to collaborate effectively across technical and non-technical teams
  • Strong problem-solving mindset with the ability to balance risk, business needs, and scalability
  • Comfortable operating in a fast-paced, high-growth environment and acting as a trusted partner to the business
  • High level of ownership, accountability, and attention to detail
  • Ability to learn quickly, adapt to change, and take on additional responsibilities as needed

Nice to have:

  • Experience with database technologies or data-intensive platforms
  • Hands-on coding or scripting experience (e.g., automation, tooling, or security-related development)
  • Experience building or scaling GRC programs in a startup or high-growth SaaS environment
What we offer:
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites

Additional Information:

Job Posted:
February 07, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Governance, Risk, and Compliance Engineer

Director - Governance, Risk and Compliance

We are a fast-growing fintech company seeking a proactive and highly organized G...
Location
Location
United States , New York
Salary
Salary:
175000.00 - 200000.00 USD / Year
clearstreet.io Logo
Clear Street
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in GRC, security compliance, risk management, or related functions
  • Strong understanding of common security frameworks (SOC 2, ISO 27001, NIST CSF, PCI-DSS)
  • Experience managing audits end-to-end
  • Demonstrated ability to build and maintain governance processes and cross-functional compliance programs
  • Excellent documentation, communication, and stakeholder-management skills
  • Experience in technology, fintech, financial services, or other highly regulated industries
Job Responsibility
Job Responsibility
  • Develop, maintain, and manage the company’s security and compliance policy framework
  • Ensure policies are current, properly communicated, approved, and effectively implemented across the organization
  • Oversee periodic reviews of all internal policies
  • Educate teams on policy requirements and drive adherence
  • Build, implement, and continuously refine the company’s cyber security risk management framework
  • Lead risk identification, assessment, scoring, and periodic re-evaluations
  • Maintain the corporate risk register
  • Manage all internal and external audits including SOC 2, ISO 27001, regulatory exams, and customer due-diligence requests
  • Coordinate and prepare audit evidence
  • Serve as the primary liaison with external auditors, security assessors, and regulatory bodies
What we offer
What we offer
  • Competitive compensation packages
  • Company equity
  • 401k matching
  • Gender-neutral parental leave
  • Full medical, dental and vision insurance
  • Lunch stipends
  • Fully stocked kitchens
  • Happy hours
  • Fulltime
Read More
Arrow Right

Senior Governance, Risk and Compliance Analyst - Governance

Come join the company that is reinventing cloud security and empowering business...
Location
Location
Netherlands
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in one or more of the Governance, Risk, and Compliance domains
  • Passion for security and keeping Wiz safe
  • Ability to collaborate with technical and non-technical teams alike to further oversight responsibilities of Security
  • Deep knowledge of one or more industry frameworks such as ISO 27001, ISO 27017, SOC 2, PCI DSS, NIST CSF, etc. and baseline knowledge of others
  • Ability to assist with security compliance assessments to ensure compliance with internal and external requirements (ISO, NIST, CIS, etc.)
  • Experience working in a fast-paced tech environment both independently, and collaboratively within a team environment
  • Ability to build strong relationships across teams and functions in a global workplace
  • Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship
Job Responsibility
Job Responsibility
  • Design and update policies, procedures, and controls to drive confidentiality, integrity, and availability across the Wiz environment
  • Continuously improve processes, tools, and procedures for audit and compliance management
  • Collaborate and work cross-functionally across the company to address governance and compliance needs and to support the Wiz Control Framework, partnering with Engineering, Product, Sales, Legal, HR, and other teams
  • Proactively improvement control design and performance to address a changing risk landscape
  • Deliver timely audits through working with internal and external auditors
  • Help customer-facing teams respond to information security requirements and questionnaires
  • Assist with third party risk management reviews, assessing vendor’s security, compliance, and privacy posture
  • Participate in team project management, including documentation, project planning, task management, and prioritization
  • Participate in recurring annual core audits (e.g., SOC 2, ISO, PCI)
  • Maintain awareness of security and regulatory trends, perform research and analysis on new certifications, and help Wiz pursue new international compliance initiatives
Read More
Arrow Right

Governance, risk and compliance technical analyst intern

This is a 10 week internship program that runs from May 27th, 2026 to August 7th...
Location
Location
United States , San Diego; San Francisco
Salary
Salary:
35.00 USD / Hour
gofundme.com Logo
GoFundMe
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Confidently maintain clear and concise communication with colleagues while working in a remote or hybrid environment
  • Inquisitive with a solution-oriented mindset
  • Demonstrate excellent analytical, problem-solving, time-management, and multitasking abilities
  • Passionate about staying current on regulatory changes, industry guidance, and card scheme compliance
Job Responsibility
Job Responsibility
  • Coordinate external auditor requests and facilitate meetings with Information Technology, Engineering Teams, Security and Control Owners
  • Build trust center tiles to communicate internal controls to customers and regulatory bodies
  • Assist in evidence collection for IT control reviews, infrastructure, change management and product releases
  • Assist in building communication portfolios, customer journeys and feedback forms for all audit stakeholders to ensure consistency in reaching audit goals, and note potential opportunities, risks, or complications
What we offer
What we offer
  • Competitive pay and comprehensive healthcare benefits
  • Financial assistance for things like hybrid work, family planning
  • Generous parental leave
  • Flexible time-off policies
  • Mental health and wellness resources
  • Learning, development, and recognition programs
  • Fulltime
Read More
Arrow Right

Principal Security Governance Engineer

The Principal Security Governance Engineer will lead the development and impleme...
Location
Location
United States , San Francisco
Salary
Salary:
183800.00 - 295200.00 USD / Year
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • 10+ years of experience in security governance, risk management, and compliance, preferably in a large-scale SaaS/Product environment
  • Strong knowledge of cybersecurity principles, technology-related regulations, and IT governance frameworks
  • Experience in leading security awareness and training programs
  • Excellent communication, documentation, presentation and leadership skills, with the ability to influence and engage stakeholders at all levels
  • CRISC, CISSP, CISA, or equivalent certifications are preferred.
Job Responsibility
Job Responsibility
  • Design and implement comprehensive security governance frameworks and risk management strategies using Atlassian products, tools and systems
  • Evaluate and report on the effectiveness of security controls and compliance with relevant laws and regulations, including HIPAA
  • Collaborate with cross-functional teams to integrate security practices into all aspects of the organization
  • Assume the HIPAA Security Officer role to ensure compliance with HIPAA security requirements
  • Develop and maintain policies and procedures to protect sensitive health information in Atlassian products and services
  • Conduct security audits and assessments to ensure ongoing compliance and address any gaps
  • Develop and implement security awareness and training programs to mitigate human risk factors
  • Conduct regular training sessions and workshops to educate employees on security best practices
  • Monitor, evaluate and improve HRM programs such as phishing simulations, mandatory training, threat intelligence liaison and audit support
  • Provide leadership and guidance to the Security Governance team, fostering a culture of security awareness and continuous improvement
What we offer
What we offer
  • benefits, bonuses, commissions, and equity
  • Fulltime
Read More
Arrow Right

Ot Compliance Engineer

As knowledge holder you will assist the employees at our sites in Antwerp and Du...
Location
Location
Belgium , Antwerpen
Salary
Salary:
Not provided
indaver.ie Logo
Indaver
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master degree in Electromechanics/Electronics/Automation/ICT
  • at least 3 years of relevant experience
  • speak and write Dutch and English
  • work independently and accurately
  • customer-oriented
  • excellent coordinating communicator
Job Responsibility
Job Responsibility
  • Assist employees at sites in Antwerp and Dunkirk in correct safe and compliant management of all locally installed hardware and software for operational technology (industrial automation)
  • maintain contacts with suppliers of systems
  • assist project engineers in drafting specifications
  • assist maintenance and operations in local procedures on system management
  • maintain contacts with external parties, auditors and governments regarding conformity to legislation and standards in systems management and cybersecurity
  • work closely with other automation engineers at different Indaver sites
  • share knowledge and experience
  • supervise risk assessment workshops with the sites on the system architectures
  • adapt communication to interlocutor
  • clarify matters and convince people in understandable language
What we offer
What we offer
  • Competitive salary package
  • opportunity for further development
  • good work-life balance
  • flexible working hours
  • knowledge sharing and communication with different sites and businesses
  • Fulltime
Read More
Arrow Right

Cybersecurity & Compliance Engineer

We are seeking a Cybersecurity & Compliance Engineer to ensure the security, com...
Location
Location
United States , Wayne
Salary
Salary:
60.00 - 100.00 USD / Hour
bhsg.com Logo
Beacon Hill
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Top Secret Security Clearance
  • Strong knowledge of security principles, risk management, and compliance frameworks (e.g., NIST, ISO 27001)
  • Experience designing secure operating systems, networks, and database solutions
  • Familiarity with government and industry standards, including certification and accreditation processes
  • Ability to identify vulnerabilities and implement effective security controls
  • Proficiency with vulnerability scanning, intrusion detection, and security monitoring tools
  • Skilled in preparing security documentation, audit reports, and compliance artifacts
  • Knowledge of threat intelligence and proactive security measures
  • Ability to develop and deliver security awareness programs for users
Job Responsibility
Job Responsibility
  • Ensure compliance with applicable security policies, standards, and governing documents
  • support periodic regulatory and audit assessments
  • Design, implement, and test secure operating systems, network architectures, and database solutions using current best practices
  • Monitor emerging vulnerabilities and threats
  • provide ongoing security awareness and training to system users
  • Conduct risk assessments and deliver actionable recommendations to ensure secure system implementation and regulatory compliance
  • Develop, maintain, and submit information system security documentation and reports required by regulatory or oversight bodies
  • Identify, assess, and mitigate security risks and threats throughout the full system and program lifecycle
  • Validate security requirements and ensure systems meet compliance and protection standards
  • Establish and maintain system security documentation, policies, and procedures
What we offer
What we offer
  • https://bhsg.com/useful-links#employee-benefits
  • Fulltime
Read More
Arrow Right

Security Engineer 4 - FedRAMP Compliance Architect

PagerDuty is seeking a Security Engineer 4 - FedRAMP Compliance Architect to joi...
Location
Location
United States , Atlanta
Salary
Salary:
176000.00 - 281000.00 USD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in cloud security architecture, compliance, or cybersecurity engineering, with at least 3 years of experience supporting FedRAMP Moderate or High authorization
  • Deep expertise in FedRAMP, NIST 800-53, FISMA, and cloud security best practices
  • Strong ability to assess security risks and recommend technical and procedural mitigations
  • Experience working with AWS GovCloud, Azure Government, or other federal cloud environments
  • Experience with audit preparation, risk assessments, and working with third-party assessors (3PAOs)
  • Exceptional written and verbal communication skills for creating and managing FedRAMP documentation
Job Responsibility
Job Responsibility
  • Design, implement, and maintain system architectures to align with FedRAMP requirements
  • Serve as the subject matter expert (SME) on FedRAMP, advising internal teams on security best practices, control implementations, and risk mitigation strategies
  • Collaborate with engineering, operations, product, and corporate IT teams to develop secure cloud-based architectures that meet federal compliance mandates
  • Implement governance strategy on technical security controls, including access management, configuration, encryption, logging, monitoring, and vulnerability management
  • Support annual assessments, security control reviews, and audits, coordinating with third-party assessors (3PAO) and government sponsors
  • Technical support for external stakeholders on customer responsibilities
  • Key contributor to the development and maintenance of the System Security Plan (SSP), Policies and Procedures, Configuration Management Plan, Secure System Development Life Cycle, and other FedRAMP documentation
  • Partner with the GRC (Governance, Risk, and Compliance) team to efficiently track and resolve security findings
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package from day one
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent (some countries have longer leave standards and we comply with local laws)
  • Fulltime
Read More
Arrow Right

Security Engineer 4 - FedRAMP Compliance Architect

PagerDuty is seeking a Security Engineer 4 - FedRAMP Compliance Architect to joi...
Location
Location
United States
Salary
Salary:
176000.00 - 281000.00 USD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in cloud security architecture, compliance, or cybersecurity engineering
  • at least 3 years of experience supporting FedRAMP Moderate or High authorization
  • deep expertise in FedRAMP, NIST 800-53, FISMA, and cloud security best practices
  • strong ability to assess security risks and recommend technical and procedural mitigations
  • experience working with AWS GovCloud, Azure Government, or other federal cloud environments
  • experience with audit preparation, risk assessments, and working with third-party assessors (3PAOs)
  • exceptional written and verbal communication skills for creating and managing FedRAMP documentation
Job Responsibility
Job Responsibility
  • Design, implement, and maintain system architectures to align with FedRAMP requirements
  • serve as the subject matter expert (SME) on FedRAMP, advising internal teams on security best practices, control implementations, and risk mitigation strategies
  • collaborate with engineering, operations, product, and corporate IT teams to develop secure cloud-based architectures that meet federal compliance mandates
  • implement governance strategy on technical security controls, including access management, configuration, encryption, logging, monitoring, and vulnerability management
  • support annual assessments, security control reviews, and audits, coordinating with third-party assessors (3PAO) and government sponsors
  • technical support for external stakeholders on customer responsibilities
  • key contributor to the development and maintenance of the System Security Plan (SSP), Policies and Procedures, Configuration Management Plan, Secure System Development Life Cycle, and other FedRAMP documentation
  • partner with the GRC (Governance, Risk, and Compliance) team to efficiently track and resolve security findings
What we offer
What we offer
  • Competitive salary
  • comprehensive benefits package from day one
  • flexible work arrangements
  • company equity
  • ESPP (Employee Stock Purchase Program)
  • retirement or pension plan
  • generous paid vacation time
  • paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent
  • Fulltime
Read More
Arrow Right